50K WordPress sites exposed to RCE attacks by critical bug in backup plugin

By: SERGIU GATLAN. A critical severity vulnerability in a WordPress plugin with more than 90,000 installs can let attackers gain remote code execution to fully compromise vulnerable websites. Known as Backup Migration, the plugin helps admins automate site backups to local storage or a Google Drive account. The security bug (tracked as CVE-2023-6553 and rated with a 9.8/10 severity score) was discovered by a team of bug hunters known as Nex Team, who reported it to […]

read more

Boeing claimed by LockBit ransom gang

“Boeing claimed by LockBit ransom gang” Leading global aerospace, commercial jetliner manufacturer, and US military and defense contractor The Boeing Company is being claimed by the LockBit ransomware gang. The Russian-linked ransomware group posted Boeing as its latest conquest Friday around 2 p.m. ET on its dark leak site. “We are assessing this claim,” a Boeing spokesperson told Cybernews in a brief statement Friday just after 4:40 p.m. ET. LockBit says it has […]

read more

NASCO exposes data of 800K people in MOVEit breach

NASCO exposes data of 800K people in MOVEit breach. The notice “NASCO exposes data of 800K people in MOVEit breach”  to affected clients on October 27th stated that the National Account Service Company (NASCO) used MOVEit Transfer, a third-party software application, to exchange files. It joins a long list of companies affected by the attack on the software at the end of May. Threat actors were able to access NASCO’s MOVEit Transfer […]

read more

Google Expands Its Bug Bounty Program to Tackle Artificial Intelligence Threats

Google Expands Its Bug Bounty Program Vulnerability Rewards Program (VRP) to compensate researchers for finding attack scenarios tailored to generative artificial intelligence (AI) systems in an effort to bolster AI safety and security. “Generative AI raises new and different concerns than traditional digital security, such as the potential for unfair bias, model manipulation or misinterpretations of data (hallucinations),” Google’s Laurie Richardson and Royal Hansen said. Some of the categories that are in […]

read more

N. Korean Lazarus Group Targets Software Vendor Using Known Flaws

The North Korea-aligned Lazarus Group has been attributed as behind a new campaign in which an unnamed software vendor was compromised through the exploitation of known security flaws in another high-profile software. The attack sequences, according to Kaspersky, culminated in the deployment of malware families such as SIGNBT and LPEClient, a known hacking tool used by the threat actor for victim profiling and payload delivery. “The adversary demonstrated a high level of sophistication, […]

read more
Trustpilot
The rating of livingsafeonline.com at Trustprofile Reviews is 9.1/10 based on 13 reviews.
A note to our visitors

This website has updated its privacy policy in compliance with changes to European Union data protection law, for all members globally. We’ve also updated our Privacy Policy to give you more information about your rights and responsibilities with respect to your privacy and personal information. Please read this to review the updates about which cookies we use and what information we collect on our site. By continuing to use this site, you are agreeing to our updated privacy policy.

Verified by MonsterInsights